Certus
← All services

Data Breach Reporting Readiness

The playbook, thresholds and rehearsed response that turn a breach from chaos into a controlled, timely process.

What it is

A complete breach-response capability — detection triage, severity thresholds, regulator and data-subject notification logic, and a rehearsed incident playbook aligned to PDPL notification obligations and ADHICS requirements for healthcare entities.

Why it matters

The instinct in the first hours of a breach is almost always to under-communicate and over-investigate. That is exactly backwards under PDPL. Organisations that have never rehearsed a breach lose the first, most critical hours deciding who has authority to act.

What Certus does
  • Define breach severity thresholds and the decision tree for regulator and data-subject notification.
  • Build the cross-functional response team structure — legal, security, communications, executive.
  • Draft notification templates pre-approved by legal, ready to adapt under time pressure.
  • Run a live tabletop exercise with your actual incident team, not a generic scenario.
What you receive
  • A breach response playbook mapped to PDPL and ADHICS notification timeframes
  • Pre-approved regulator and data-subject notification templates
  • A tested RACI for breach decision-making, including out-of-hours escalation
  • A tabletop exercise report with named improvement actions
Typical timeline

3–5 weeks to build the playbook; a tabletop exercise typically runs half a day.

Who this is for

CISOs, Incident Handlers, DPOs and Boards who need certainty that the organisation will act correctly and on time when — not if — an incident occurs.

How this differs from a generic consultancy

We rehearse this with your real team, on your real systems, until the muscle memory is there. A playbook nobody has practised is a document, not a capability.